Описание
Konqueror Embedded and KDE 2.2.2 and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof certificates via a man-in-the-middle attack.
Konqueror Embedded and KDE 2.2.2 and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof certificates via a man-in-the-middle attack.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2003-0370
- http://lists.grok.org.uk/pipermail/full-disclosure/2003-May/004983.html
- http://www.debian.org/security/2003/dsa-361
- http://www.kde.org/info/security/advisory-20030602-1.txt
- http://www.redhat.com/support/errata/RHSA-2003-192.html
- http://www.redhat.com/support/errata/RHSA-2003-193.html
- http://www.securityfocus.com/archive/1/320707
- http://www.securityfocus.com/bid/7520
- http://www.turbolinux.com/security/TLSA-2003-36.txt
EPSS
CVE ID
Связанные уязвимости
Konqueror Embedded and KDE 2.2.2 and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof certificates via a man-in-the-middle attack.
Konqueror Embedded and KDE 2.2.2 and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof certificates via a man-in-the-middle attack.
Konqueror Embedded and KDE 2.2.2 and earlier does not validate the Com ...
Уязвимости операционной системы Red Hat Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
EPSS